[ 
https://issues.apache.org/jira/browse/TINKERPOP-2185?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16807934#comment-16807934
 ] 

ASF GitHub Bot commented on TINKERPOP-2185:
-------------------------------------------

robertdale commented on pull request #1086: TINKERPOP-2185 bump 
commons-configuration to 1.10.0.redhat-1
URL: https://github.com/apache/tinkerpop/pull/1086
 
 
   
   https://issues.apache.org/jira/browse/TINKERPOP-2185
   
   
 
----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
[email protected]


> Use commons-configuration2 instead of commns-configuration
> ----------------------------------------------------------
>
>                 Key: TINKERPOP-2185
>                 URL: https://issues.apache.org/jira/browse/TINKERPOP-2185
>             Project: TinkerPop
>          Issue Type: Bug
>          Components: structure
>    Affects Versions: 3.3.6, 3.4.1
>            Reporter: Alex Ott
>            Assignee: stephen mallette
>            Priority: Major
>
> Product called Whitesource reports vulnerabilities in the 
> commons-configuration 1.10 that is dependency of the gremlin-core module. As 
> result, some projects couldn't be allowed to production because of the 
> failing check.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Reply via email to